Cybersecurity analyst – vapt

7 days ago


Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, e CPPT, e JPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST). The ideal candidate will have hands-on experience performing end-to-end security testing across web applications, mobile apps (Android/i OS), APIs, networks, Active Directory environments, and source code.This role requires a strong understanding of offensive security, exploit development, red teaming methodologies, and secure coding practices to identify, exploit, and document vulnerabilities with actionable recommendations.Key Responsibilities- Conduct Vulnerability Assessments and Penetration Tests (VAPT) across:- Web applications, APIs, and backend services- Android and i OS mobile applications- Corporate and cloud networks- Active Directory and internal infrastructure- Perform SAST & DAST on custom applications using manual and automated tools.- Analyze source code (Java, Python, PHP,. NET, etc.) to identify logic flaws and insecure coding practices.- Execute Red Team exercises, simulate attack chains, and evaluate defense mechanisms.- Generate detailed technical reports with Po C evidence, exploit steps, risk severity, and remediation guidance.- Collaborate with development and Dev Sec Ops teams to verify fixes and retests.- Maintain up-to-date knowledge of the latest vulnerabilities, exploits, and security tools.- Support compliance assessments and cybersecurity trends.Required Skills and Expertise- Strong knowledge of OWASP Top 10, SANS CWE 25, and MITRE ATT&CK frameworks.- Hands-on experience with tools like Burp Suite, ZAP, Metasploit, Nmap, Nessus, Nikto, Mob SF, Frida, Drozer, Postman, SQLMap, etc.- Deep understanding of authentication flaws, insecure direct object references, API abuse, and privilege escalation.- Practical experience with Active Directory attacks (Kerberoasting, Pass-the-Hash, LLMNR poisoning, etc.)- Proficiency in scripting languages (Python, Bash, Power Shell) and code review.- Excellent analytical, reporting, and communication skills.Certifications (Preferred but not Mandatory)- Offensive Security Certified Professional (OSCP)- Certified Ethical Hacker (CEH)- e Learn Security Certified Professional Penetration Tester (e CPPT)- GIAC Penetration Tester (GPEN)- e WPT / e WPTX / e JPTEducational Qualification- Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field.- Equivalent hands-on experience may be considered as a substitute for formal education.Why Join Us- Opportunity to work on real-world red teaming engagements and advanced VAPT projects.- Exposure to global clients in the BFSI, IT, and healthcare domains.- Continuous learning through internal labs, CTFs, and tool research.- Competitive pay, certification sponsorship, and a growth-oriented culture.



  • Mumbai, Maharashtra, India ShieldByte Infosec Pvt. Ltd. Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Location:Ghatkopar, Mumbai (Onsite)Department:Information Security / Offensive SecurityExperience:2–8 YearsCertifications Preferred:OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilledCybersecurity Analyst (Vulnerability Assessment & Penetration Testing)specializing in bothStatic Application Security Testing...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security...


  • mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite) Department: Information Security / Offensive Security Experience: 2–8 Years Certifications Preferred: OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalent About the Role We are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing...


  • Mumbai, India ShieldByte Infosec Pvt. Ltd. Full time

    Location: Ghatkopar, Mumbai (Onsite)Department: Information Security / Offensive SecurityExperience: 2–8 YearsCertifications Preferred: OSCP, CEH, e CPPT, e JPT, GWAPT, or equivalentAbout the RoleWe are seeking a highly skilled Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing) specializing in both Static Application Security Testing...